Ever suspected your friends may be Sistersnooping on your Facebook profile behind your back? It turns out they are, a new study shows.
New research from the University of British Columbia in Canada says 24 percent -- or more than one in five subjects -- had accessed someone else’s Facebook account without permission, and 21 percent have been victims (that knew about the unauthorized access).
The security community calls this kind of profile snooping a "social insider attack." This means the attacker knows the victim and gains access to the account by physically accessing the victim’s device, whether it's a phone, tablet, laptop or something else.
SEE ALSO: Facebook just replaced your desktop inbox with Messenger
The study surveyed 1,308 adult Facebook users in the United States. It looked at a less-talked-about phenomenon -- unauthorized access of accounts by people you know. The study explored five potential motivators: fun, curiosity, jealousy, animosity and utility.
'Social insider attacks' may be motivated by curiosity or even jealousy.
"We initially wanted to build technical solutions to mitigate these attacks, but we soon discovered that we really did not understand them well," Ivan Beschastnikh, one of the paper's author's told Mashable. "So we decided that instead we should carry out an empirical study to understand the attacks better before attempting to prevent them."
While not much work has been done studying these kinds of attacks, they are certainly not new. You may have seen outrageous posts on your newsfeed only to have the poster later clarify that their account was “facejacked,” “fraped” or “hacked” by a friend. While such unauthorized access is often harmless, there can be much darker motives behind social insider attacks.
One common scenario is that of romantic partners, where the attack may be motivated by curiosity or even jealousy. The perpetrator usually targets private messages of the victim, and the intrusions often go undiscovered.
"One recommendation that we make is that Facebook could provide better support for monitoring passive account activity." Beschastnikh said. "A log that cannot be altered and that records passive actions [such as viewing already-read messages] as well as active actions in the account would (1) allow victims to identify these attacks, and (2) deter potential perpetrators."
Another possible solution, used by several apps that store sensitive information, is for the app to have its own passcode, which the user must input every time they open the app. This ensures that even if the device is left unlocked where third parties could access it, the app's data remains locked. Notably, Facebook, which recently updated its privacy tools, doesn't offer this tool.
Similarly, with fingerprint detection becoming ubiquitous on smartphones, users can set up a fingerprint-based barrier to entry on some apps. Such precautions generally don't translate to laptops, however, so there isn't a universal method to mitigate risks. Getting in the habit of locking your phone and laptop when you're not using them is still the best precaution.
The findings of the study can extend to other apps like Twitter, messaging apps and email. For those services, current security mechanisms aren't very effective against social insider attacks. While this study is relatively small in scale, anyone who has let someone borrow their smartphone or left their laptop unattended at work is aware that social insider attacks are a real risk, and app makers will need to come up with new ways of dealing with them.
Topics Cybersecurity Facebook Instagram Privacy Snapchat X/Twitter
Rhaenyra straight up gaslights a continent to nab 'House of the Dragon' MVPGoogle celebrates the Lesbian Velma reveal with an extremely gay Easter eggWhy spam calls are everywhere, and what you can do to prevent themChrissy Teigen gets a hamster, takes all of Twitter along for the rideQueen Elizabeth II posts her first ever Instagram post and it's pretty specialGoogle Pixel 7 will probably be easier to getWhy spam calls are everywhere, and what you can do to prevent themRoger Stone's very lame Instagram meme may soon land him in jailIt's way too easy to accidentally reply to Instagram Stories'Quordle' today: See each 'Quordle' answer and hints for October 616 babydoll sheep so adorable you will cryMitt Romney's unusual technique for blowing out birthday candles is puzzling the internetIt's way too easy to accidentally reply to Instagram StoriesInstagram's thirst memes can open up healthy conversations about sexTinder and Peacock partner up for Halloween discountsWordle today: Here's the answer, hints for October 6Wordle today: Here's the answer, hints for October 2Mitt Romney's unusual technique for blowing out birthday candles is puzzling the internetParental controls are such a scamOne viral tweet saved the day for this struggling donut shop Maurice Isserman’s Red Scare Ghosts in the Mirror The McNutter Brothers Courting Disaster I Have Secrets Week of Wonders Protect and Serve Holy Beings Protecting the Rights of Syrian Refugees The Eyes of Lacy Game Plan Trauma Wards Redemption Arc Noise Pollution Kicking an Open Door Tea Party Report Clearly It Is Ocean Netanyahu’s Inferno Bookselling Out The Fracture of Good Order
2.576s , 10131.6953125 kb
Copyright © 2025 Powered by 【Sister】,Unobstructed Information Network